Date: Sat, 22 Jul 2017 08:47:12 -0400 From: Shawn Webb <shawn.webb@hardenedbsd.org> To: Yonas Yanfa <yonas@fizk.net> Cc: freebsd-security@freebsd.org Subject: Re: OpenSCAP for FreeBSD Message-ID: <20170722124712.oxl6yalmhdetbwfe@mutt-hbsd> In-Reply-To: <72d3444e-5174-776e-049e-8b3099fab779@fizk.net> References: <3056b3dc-82d6-0634-0f14-2a4308488a95@fizk.net> <2651306.a2lTSCmlO7@freechin.atlnet> <72d3444e-5174-776e-049e-8b3099fab779@fizk.net>
next in thread | previous in thread | raw e-mail | index | archive | help
--n5gdkrdpw746dogn Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Fri, Jul 21, 2017 at 09:49:14PM -0400, Yonas Yanfa wrote: > On 07/21/2017 20:17, Joey Kelly wrote: > > On Friday 21 July 2017 19:21:10 Yonas Yanfa wrote: > > > Hi, > > >=20 > > > Is there anything like OpenSCAP for FreeBSD? > > If it's a matter of selecting an XML profile, then surely one can be cr= afted > > for any OS you choose. > >=20 >=20 > Yes, and it shouldn't be too hard to port this to FreeBSD, but possibly t= ime > consuming. >=20 > The benefit of porting it is that they already have a lot of security > policies <https://www.open-scap.org/security-policies/> written (eg. USGC= B, > PCI DSS). Scanning and remedying Linux and FreeBSD systems for > vulnerabilities could be done using the same XML file. Also, you can use > their installer plugin > <https://www.open-scap.org/tools/oscap-anaconda-addon/> to set security > profiles during install. I'll get in touch with some of my coworkers, who were instrumental in the creation of SCAP. I'll get their thoughts on LoE for porting to FreeBSD. Depending on their schedules, my response may be delayed. Thanks, --=20 Shawn Webb Cofounder and Security Engineer HardenedBSD GPG Key ID: 0x6A84658F52456EEE GPG Key Fingerprint: 2ABA B6BD EF6A F486 BE89 3D9E 6A84 658F 5245 6EEE --n5gdkrdpw746dogn Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKrq2ve9q9Ia+iT2eaoRlj1JFbu4FAllzSU0ACgkQaoRlj1JF bu6n3g/+Izrnz+2Ma3L170xZsO/ZrY1XhKq1LjBOovN6jhHpJ5ercUm4QioxpxW5 XloFBX/CNn2rFmyK+nf7AonjaR1rkMYMNJGS2Kd+GwDK3sBFvE9CC62O/eHcuN7b olCN6cRlDMMBm2hPZKp7J0o39OJChRn7VFVNfynFjvOEZycTQgO1b6XHgRbo6p8y nwMH8hdCJAuSLJJbT4/vKxm93O3Ep/yRSR48p3BQin89PcY8KMCnIjhk/Q9VUrDC LlXpm+9Cax4eXz1P7Y8Eae9lqaLISTWcWzeHFRk4kQhMBkYTFZXWE2OJVG1RsjvX xGGtt4P2aR4jPdqSmwg9hwtrzjO8IwMN4L76+sujuKgux8zAh1kjB2xG/Cub52Z0 g0offIfe8oTv/I9Ym3nolZWkh5A2lPE14sc5hrhZ8Eo66Ne/3PvAjOEYtCEMqGOg sE9ZMWzC2HUW6ZleGVQVrPOVgQkvgW6zyjOFnZATWZeYrfEBe0FnIgUbqCwvbL7g S1zXBa8Josopo3EjJNkq+Mysz7JBaJmTRKJEv7Ood1iH0bfqdwEBxTzrghyztZlC QACcLs8O61+gfLcgwrLU27bIYgsjEJ7KXLBNyf4uwuLxhsM94lXIo9sr0pF8Fcn1 L1+tLJo74V0IjJ49oF6ppuB/LCIUhTYe1U93SiSogRyRx7zfi+I= =MwbR -----END PGP SIGNATURE----- --n5gdkrdpw746dogn--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20170722124712.oxl6yalmhdetbwfe>